Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25356
HistoryMay 10, 2020 - 11:27 p.m.

Arbitrary Code Execution

2020-05-1023:27:55
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

EPSS

0.007

Percentile

80.4%

wavpack is vulnerable to arbitrary code execution. A heap-based buffer over-read in the ParseDsdiffHeaderConfig function in cli/dsdiff.c allows a remote attacker to execute arbitrary code on the system or cause a denial-of-service via a malicious DSDIFF file.